IBM Support

Logging client IP in request.log

Question & Answer


Question

WebSEAL request.log of IBM Security Access Manager (ISAM) shows Load Balancer IP as client IP. How can the request.log show the originating client IP?

Answer

The 'request-log-format' parameter in the WebSEAL configuration file can be used to customize the request.log.
Content from headers can be used in the form of '%{header-name}i'.
In a load-balancer enviroment the header 'X-Forwarded-For' header is used to identify the originating client IP address.

Something like this can be used to include the client IP:

request-log-format = %h %l %u %t "%r" %s %b  %{x-forwarded-for}i

Related Information

[{"Product":{"code":"SSPREK","label":"Tivoli Access Manager for e-business"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Component":"--","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"Version Independent","Edition":"","Line of Business":{"code":"LOB24","label":"Security Software"}}]

Product Synonym

TAMeB
ISAM
WRP

Document Information

More support for:
Tivoli Access Manager for e-business

Software version:
Version Independent

Document number:
235553

Modified date:
16 June 2018

UID

swg21661151

Manage My Notification Subscriptions